*** Official Ubiquiti Discussion Thread ***

It’s fine, but through trying to simplify and make it more usable for most use cases, it does sometimes make troubleshooting and really understanding exactly what is going on a bit difficult at times. There are also various settings or modes that implement firewall rules in zones such as guest hotspots etc. so behaviour can change even if you don’t directly interact with the firewall rules. So watch out for those as well.
 
Zones are ultimately the right way to do it, but it's still is unwieldy at times and visually can detract if you are used to a simple ACL.
 
Last edited:
I'm missing something. Recently tweaked my VLANs (management, trusted, surveillance, IoT) and moved my Emby server/HTPC to my 10gb aggregation switch. I couldn't get my WoL working - I use the HTPC to wake up my main rig - WakeMeOn couldn't see my rig. Realised my mistake, my main rig was on Trusted and HTPC on Management so put the HTPC onto Trusted but now I can't remote into the HTPC in AnyDesk and my Emby server isn't responding.

If I put the HPTC back on management, I can remote in/Emby works but my WoL app can't see my main rig. My NAS is running off the aggregation switch on Trusted and can be reached remotely with no issues. The SFP port connecting the aggregation switch to UDM-SE is on Management.

Edit - tried changing a few settings but completely stumped why putting my HTPC on my Trusted list cuts it off from the internet when a similar device (UGREEN Nas) is on the same switch and VLAN working fine.

Edit - bought some smart plugs instead. Can measure power and I can power up the rig easy peasy.
 
Last edited:
Just forward thinking a bit to when my kids are a bit older. If I want to control their access to the internet. It’s best to put them and their devices on a separate kids vlan and to enable parental controls? I’m guessing as well you can force the vlan to go inactive between certain times?
 
I plan to do a backup, delete all firewall rules and start again.

Never done a restore, is it easy and reliable?

Yes, I do them when I swap between units and have never had any issues.

The replacement device needs to be on the same or a higher level of firmware/network than the backup, depending on whether you are doing a complete restore or network restore.
 
Yes, I do them when I swap between units and have never had any issues.

The replacement device needs to be on the same or a higher level of firmware/network than the backup, depending on whether you are doing a complete restore or network restore.
It's more in case I mess up any settings. There's a few YouTube basic setups online now so I'll follow one of those, my current one is based on that anyway but with a few extra to allow certain things to talk across VLANs.
 
Last edited:
Ordered a Cloud Gateway Fiber to replace my Cloud Key 2 Plus and aging USG 4 Pro. Also grabbed a U7 Pro Inwall to test with.

The Fiber will let me enable IDS etc and still get enough througput on my Gbit internet connection. Native WG VPN will be nice but I think I'll end up leaving that on my docker server.

Next on the upgrade list will be switch :o
 
Ordered a Cloud Gateway Fiber to replace my Cloud Key 2 Plus and aging USG 4 Pro. Also grabbed a U7 Pro Inwall to test with.

The Fiber will let me enable IDS etc and still get enough througput on my Gbit internet connection. Native WG VPN will be nice but I think I'll end up leaving that on my docker server.

Next on the upgrade list will be switch :o
The CGF is a great little box. I have to ask though, why do you need IDS? It's unnecessary for 99% of home connections.
 
Ordered a Cloud Gateway Fiber to replace my Cloud Key 2 Plus and aging USG 4 Pro. Also grabbed a U7 Pro Inwall to test with.

The Fiber will let me enable IDS etc and still get enough througput on my Gbit internet connection. Native WG VPN will be nice but I think I'll end up leaving that on my docker server.

Next on the upgrade list will be switch :o
As ChrisD said, it's a great device which is future proof. But a Ultra would have been the cheaper replacement.
 
Ordered a Cloud Gateway Fiber to replace my Cloud Key 2 Plus and aging USG 4 Pro. Also grabbed a U7 Pro Inwall to test with.

The Fiber will let me enable IDS etc and still get enough througput on my Gbit internet connection. Native WG VPN will be nice but I think I'll end up leaving that on my docker server.

Next on the upgrade list will be switch :o
WG on the fibre runs great! Custom DDNS runs great too.
 
Had a CGF since I moved into my new place with 2.5g fibre - its a great box. 3D printed a wall mount for it, and its been flawless
I finally got my CGF last month, but it's still sat in the box :p. I would be interested in a wall mount but don't have a 3D printer. I'm also looking at the tray but the online retailer where I got the CGF from doesn't stock it, and it's a bit steep to buy alone from anywhere else that might stock it. I have seen that there are 3D printable trays out there, but for something that would be inside of the unit, subject to any heat from the unit and NVMe drive, and being plastic, I don't particularly like the idea of something melting or failing/falling apart inside of the unit.
 
The magnetic wall mount they sell works fine with the CGF.

Code:
UACC-FM-17cm
^this is what I ordered but no doubt others will work.
 
Last edited:
Back
Top Bottom